VYPR
Medium severity5.3NVD Advisory· Published Jan 2, 2017· Updated Jun 17, 2026

CVE-2016-10099

CVE-2016-10099

Description

Borg (aka BorgBackup) before 1.0.9 has a flaw in the cryptographic protocol used to authenticate the manifest (list of archives), potentially allowing an attacker to spoof the list of archives.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Borgbackup/Borg2 versions
    cpe:2.3:a:borg_project:borg:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:borg_project:borg:*:*:*:*:*:*:*:*range: <=1.0.8
    • (no CPE)range: <1.0.9
  • Range: <1.0.9

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.